VID |
22416 |
Severity |
40 |
Port |
80, ... |
Protocol |
TCP |
Class |
WWW |
Detailed Description |
The WinGate Proxy server, according to its banner, has a buffer overflow flaw which exist in versions prior to 6.1.3. Qbik WinGate is a proxy server for Microsoft Windows platforms that provides advanced user management and an integrated email server. WinGate versions prior to 6.1.3 are vulnerable to a stack-based buffer overflow vulnerability in the HTTP proxy. By sending a specially-crafted HTTP request to the affected server, a remote attacker could exploit this vulnerability to execute arbitrary code on the affected host or to cause the affected daemon to crash.
* Note: This check solely relied on the banner of the remote HTTP server to assess this vulnerability, so this might be a false positive.
* References: http://forums.qbik.com/viewtopic.php?t=4215 http://lists.grok.org.uk/pipermail/full-disclosure/2006-June/046646.html http://secunia.com/advisories/20483 http://securitytracker.com/id?1016239 http://www.frsirt.com/english/advisories/2006/2182
* Platforms Affected: Qbik, WinGate versions prior to 6.1.3 Microsoft Windows Any version |
Recommendation |
Upgrade to the latest version of WinGate (6.1.3 or later), available from the WinGate Download Web site at http://www.wingate.com/download.php |
Related URL |
CVE-2006-2926 (CVE) |
Related URL |
18312 (SecurityFocus) |
Related URL |
26970 (ISS) |
|